CVE-2021-26691
- EPSS 38.43%
- Veröffentlicht 10.06.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 05:56:41
In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow
CVE-2021-30641
- EPSS 21.35%
- Veröffentlicht 10.06.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 06:04:21
Apache HTTP Server versions 2.4.39 to 2.4.46 Unexpected matching behavior with 'MergeSlashes OFF'
CVE-2021-0086
- EPSS 0.1%
- Veröffentlicht 09.06.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:41:49
Observable response discrepancy in floating-point operations for some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
CVE-2021-0089
- EPSS 0.04%
- Veröffentlicht 09.06.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:41:49
Observable response discrepancy in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
CVE-2021-32677
- EPSS 0.12%
- Veröffentlicht 09.06.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:07:30
FastAPI is a web framework for building APIs with Python 3.6+ based on standard Python type hints. FastAPI versions lower than 0.65.2 that used cookies for authentication in path operations that received JSON payloads sent by browsers were vulnerable...
CVE-2021-26314
- EPSS 0.1%
- Veröffentlicht 09.06.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 05:56:04
Potential floating point value injection in all supported CPU products, in conjunction with software vulnerabilities relating to speculative execution with incorrect floating point results, may cause the use of incorrect data from FPVI and may result...
CVE-2021-33829
- EPSS 0.99%
- Veröffentlicht 09.06.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:09:38
A cross-site scripting (XSS) vulnerability in the HTML Data Processor in CKEditor 4 4.14.0 through 4.16.x before 4.16.1 allows remote attackers to inject executable JavaScript code through a crafted comment because --!> is mishandled.
- EPSS 3.84%
- Veröffentlicht 08.06.2021 23:15:08
- Zuletzt bearbeitet 21.11.2024 06:06:35
ASP.NET Core Denial of Service Vulnerability
CVE-2021-31807
- EPSS 47.57%
- Veröffentlicht 08.06.2021 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:06:15
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. An integer overflow problem allows a remote server to achieve Denial of Service when delivering responses to HTTP Range requests. The issue trigger is a header that can be expected to...
CVE-2021-33203
- EPSS 0.3%
- Veröffentlicht 08.06.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:08:30
Django before 2.2.24, 3.x before 3.1.12, and 3.2.x before 3.2.4 has a potential directory traversal via django.contrib.admindocs. Staff members could use the TemplateDetailView view to check the existence of arbitrary files. Additionally, if (and onl...